VulnSea

CWE-94

CVEs classified under CWE-94, newest first.

661 CVEsRSS

CVE-2026-16205Low· 2.4
2mo ago

A weakness has been identified in Pluck CMS up to 4.7.21

A weakness has been identified in Pluck CMS up to 4.7.21. This vulnerability affects the function htmlspecialchars_decode of the file data/modules/albums/albums.admin.php of the component Albums Module. Executing a manipulation of the ar…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-16204Medium· 6.3
2mo ago

A security flaw has been discovered in zevorn rt-claw up to 0.2.0

A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This affects the function tool_run_script_execute of the file claw/services/tools/script.c of the component Telegram-to-AI Tool Execution Flow. Performing a manipulation …

▾ SunlitEPSS 0.55%via NVD
CVE-2026-16203Low· 3.5
2mo ago

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /forCYS.php. Such manipulation of the argument course leads to cross site scripting.…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-16202Low· 3.5
2mo ago

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /CYS.php. This manipulation of the argument course causes cross site scripting…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-16156Low· 3.5
2mo ago

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /forexam.php. The manipulation of the argument day results in cross site scripting. It is possible to l…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-16155Low· 3.5
2mo ago

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /schoolyr.php. The manipulation of the argument sy leads to cross site scripting. It…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-16151Medium· 6.3
2mo ago

A vulnerability has been found in CartoDB carto-api-client 0.5.29

A vulnerability has been found in CartoDB carto-api-client 0.5.29. This impacts the function addFilter of the file src/filters.ts. Such manipulation of the argument column leads to improperly controlled modification of object prototype a…

▾ SunlitEPSS 0.45%via NVD
CVE-2026-16150Medium· 6.3
2mo ago

A vulnerability was found in RobinHerbots Inputmask up to 5.0.9

A vulnerability was found in RobinHerbots Inputmask up to 5.0.9. Affected by this issue is the function extendDefaults/extendDefinitions/extendAliases in the library lib/dependencyLibs/extend.js of the component Internal Deep Merge Helpe…

▾ SunlitEPSS 0.45%via NVD
CVE-2026-9147High· 7.8PoC
2mo ago

uproot dynamically generates Python class source code from ROOT TStreamerInfo records in a file and compiles it at runtime

uproot dynamically generates Python class source code from ROOT TStreamerInfo records in a file and compiles it at runtime. Some file-controlled streamer metadata fields (for example, streamer element names) are interpolated into the gen…

▾ MidnightEPSS 0.22%via NVD
CVE-2026-47869High· 8.7
2mo ago

VMware Avi Load Balancer contains a remote code execution vulnerability

VMware Avi Load Balancer contains a remote code execution vulnerability. A malicious authenticated user with network access may be able to inject and execute code. Affected versions: 32.1.1 (fixed in 32.1.2) 31.1.1 through 31.2.2 (fixed…

▾ TwilightEPSS 0.74%via NVD
CVE-2026-47867High· 8.7
2mo ago

VMware Avi Load Balancer contains a remote code execution vulnerability

VMware Avi Load Balancer contains a remote code execution vulnerability. A malicious user with network access may be able to access the Avi Control plane and execute code remotely. Affected versions: 32.1.1 (fixed in 32.1.2) 31.1.1 thro…

▾ TwilightEPSS 0.74%via NVD
CVE-2026-9762High· 7.8
2mo ago

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote code execution when jdbc url is under user control.

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote code execution when jdbc url is under user control.

▾ TwilightEPSS 0.24%via NVD
CVE-2026-9198Critical· 9.8CISA KEVPoC
2mo ago

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api/v1/validate/code (executes user code via exec()) to achieve full RCE on default L…

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api/v1/validate/code (executes user code via exec()) to achieve full RCE on default L…

▾ HadalEPSS 29%via NVD
CVE-2026-53597High
2mo ago

Prompty: Arbitrary code execution via JavaScript frontmatter in TypeScript loader

Prompty: Arbitrary code execution via JavaScript frontmatter in TypeScript loader

▾ Twilightprompty · @prompty/coreEPSS 0.97%via GHSA
CVE-2026-46621Critical· 9.1
2mo ago

Yamcs is a mission control framework

Yamcs is a mission control framework. Prior to 5.12.7, the Yamcs script evaluation engine for Python algorithms dynamically compiled and evaluated user-controlled algorithm text using Jython through the JSR-223 ScriptEngine API without e…

▾ Midnightspaceapplications · yamcsEPSS 1.1%via NVD
CVE-2026-46562Critical· 9.8
2mo ago

Yamcs is a mission control framework

Yamcs is a mission control framework. Prior to 5.12.7, the Nashorn ScriptEngine used to evaluate user-supplied JavaScript algorithm text in yamcs-core/src/main/java/org/yamcs/algorithms/ScriptAlgorithmExecutorFactory.java was constructed…

▾ Midnightspaceapplications · yamcsEPSS 0.98%via NVD
CVE-2026-46512Critical· 9.9
2mo ago

Frogman provides headless PBX control through MCP and HTTP API

Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.2, fm_dialplan_apply accepted template parameters including greeting, dest, url, extension, code, and file, and Tools/DialplanApply.php wrote Dialplan/Templates…

▾ MidnightEPSS 0.65%via NVD
CVE-2026-55576None
2mo ago

MaaAssistantArknights is a one-click tool for daily Arknights tasks

MaaAssistantArknights is a one-click tool for daily Arknights tasks. In the current dev-v2 workflow, .github/workflows/release-preparation.yml inlined attacker-controlled github.event.pull_request.title into a run: shell command during t…

▾ SunlitEPSS 0.46%via NVD
CVE-2026-62350High· 7.2
2mo ago

TDengine is an open source, time-series database optimized for Internet of Things devices

TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, a user with create udf privilege could upload a crafted shared library and install it as a user-defined function, such as eval,…

▾ TwilightEPSS 0.54%via NVD
CVE-2026-45804High· 7.5
2mo ago

diffusers: Diffusers: Arbitrary code execution due to trust_remote_code guard bypass (CVE-2026-45804)

A flaw was found in Diffusers, a library for pretrained diffusion models. A remote attacker could exploit this vulnerability by crafting a malicious Hub repository with custom Python pipeline code. The `DiffusionPipeline.from_pretrained` f…

▾ TwilightRed Hat · Red Hat AI Inference Server 3.4EPSS 0.37%via CSAF
CVE-2026-56185Medium· 6.5
2mo ago

Windows Admin Center Information Disclosure Vulnerability

Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network.

▾ SunlitMicrosoft · Windows Admin CenterEPSS 0.84%via CVEORG
CVE-2026-50650High· 7.8
2mo ago

.NET Framework Elevation of Privilege Vulnerability

Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · .NET 8.0EPSS 0.46%via CVEORG
GHSA-9hc2-hjx8-q6pvCritical· 9.6
2mo ago

TidGi Desktop Remote Code Execution via Malicious TiddlyWiki Repository Import — Tiddler Startup Module Auto-Execution

TidGi Desktop Remote Code Execution via Malicious TiddlyWiki Repository Import — Tiddler Startup Module Auto-Execution

▾ Midnighttidgi · tidgivia GHSA
CVE-2026-13014None
2mo ago

A vulnerability in Thales CERT "Suspicious" application =< 1.3.4 allows a remote and unauthenticated attacker to execute arbitrary code and arbitrarily overwrite writable application files—including Python modules, configuration files, c…

A vulnerability in Thales CERT "Suspicious" application =< 1.3.4 allows a remote and unauthenticated attacker to execute arbitrary code and arbitrarily overwrite writable application files—including Python modules, configuration files, c…

▾ SunlitEPSS 0.70%via NVD
CVE-2026-14453Critical· 9.6
2mo ago

This vulnerability is a critical Server-Side Template Injection (SSTI) in Centreon's centreon-open-tickets module that leads to Remote Code Execution

This vulnerability is a critical Server-Side Template Injection (SSTI) in Centreon's centreon-open-tickets module that leads to Remote Code Execution. The message_confirm field is stored without sanitization and rendered via Smarty with …

▾ MidnightEPSS 0.84%via NVD
CVE-2026-15538Medium· 6.3
2mo ago

A weakness has been identified in primefaces primereact up to 10.9.8

A weakness has been identified in primefaces primereact up to 10.9.8. This issue affects the function ObjectUtils.mutateFieldData of the component API. This manipulation of the argument Field causes improperly controlled modification of …

▾ SunlitEPSS 0.54%via NVD
CVE-2026-15533Medium· 4.7
2mo ago

A security flaw has been discovered in DedeCMS 5.7.118

A security flaw has been discovered in DedeCMS 5.7.118. Impacted is an unknown function of the file /plus/search.php of the component Column Management. Performing a manipulation of the argument Column Name results in code injection. The…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-15532Low· 2.4
2mo ago

A vulnerability was identified in SourceCodester Online Book Store System 1.0

A vulnerability was identified in SourceCodester Online Book Store System 1.0. This issue affects some unknown processing of the component User Management Module. Such manipulation of the argument Name/Username leads to cross site script…

▾ SunlitEPSS 0.37%via NVD
CVE-2026-15512Medium· 6.3
2mo ago

A vulnerability was identified in pig-mesh Pig up to 3.9.2

A vulnerability was identified in pig-mesh Pig up to 3.9.2. Affected by this issue is some unknown functionality of the file \pig-master\pig-visual\pig-codegen\src\main\java\com\pig4cloud\pig\codegen\service\impl\GeneratorServiceImpl.jav…

▾ SunlitEPSS 0.39%via NVD
CVE-2026-15505Low· 3.5
2mo ago

A weakness has been identified in vnotex vnote up to 3.20.1

A weakness has been identified in vnotex vnote up to 3.20.1. Impacted is an unknown function of the file /src/data/extra/web/js/markdownit.js of the component YAML Frontmatter. This manipulation of the argument p_metaData causes cross si…

▾ SunlitEPSS 0.33%via NVD
CWE-94 vulnerabilities (CVEs) — page 15 · VulnSea